[Secure-testing-commits] r6016 - data/CVE

fw at alioth.debian.org fw at alioth.debian.org
Sat Jun 16 11:49:39 UTC 2007


Author: fw
Date: 2007-06-16 11:49:39 +0000 (Sat, 16 Jun 2007)
New Revision: 6016

Modified:
   data/CVE/list
Log:
CVE-2007-3048: not reproducible
CVE-2007-3007: php5 fixed


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-06-16 11:26:31 UTC (rev 6015)
+++ data/CVE/list	2007-06-16 11:49:39 UTC (rev 6016)
@@ -425,7 +425,7 @@
 CVE-2007-3049 (Cross-site scripting (XSS) vulnerability in index.php in Buttercup web ...)
 	TODO: check
 CVE-2007-3048 (** DISPUTED ** ...)
-	TODO: check
+	- screen <not-affected> (not reproducible)
 CVE-2007-3047 (The Vonage VoIP Telephone Adapter has a default administrator username ...)
 	TODO: check
 CVE-2007-3046 (Buffer overflow in Advanced Software Production Line Vortex Library ...)
@@ -507,7 +507,7 @@
 CVE-2007-3008 (Mbedthis AppWeb before 2.2.2 enables the HTTP TRACE method, which has ...)
 	TODO: check
 CVE-2007-3007 (PHP 5 before 5.2.3 does not enforce the open_basedir or safe_mode ...)
-	TODO: check
+	- php5 5.2.3-1 (unimportant)
 CVE-2007-3006 (Buffer overflow in Acoustica MP3 CD Burner 4.32 allows user-assisted ...)
 	TODO: check
 CVE-2007-3005 (Unspecified vulnerability in the Sun Java Runtime Environment in JDK ...)




More information about the Secure-testing-commits mailing list